First published: Tue Mar 01 2022(Updated: )
A cleartext storage of information vulnerability in the Zyxel VMG3625-T50B firmware version V5.50(ABTL.0)b2k could allow an authenticated attacker to obtain sensitive information from the configuration file.
Credit: security@zyxel.com.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Zyxel AX7501-B0 | <5.17\(abpc.2\)c0 | |
Zyxel AX7501-B0 firmware | ||
Zyxel Dx3301-t0 Firmware | <5.50\(abvy.3\)c0 | |
Zyxel Dx3301-t0 Firmware | ||
Zyxel DX5401-B0 | <5.17\(abyo.2\)c0 | |
Zyxel DX5401-B0 firmware | ||
Zyxel EMG3525-T50B Firmware | <5.50\(abpm.7\)c0 | |
Zyxel EMG3525-T50B Firmware | ||
Zyxel EMG5523-T50B | <5.50\(abpm.7\)c0 | |
Zyxel EMG5523-T50B Firmware | ||
Zyxel EMG5723-T50K Firmware | <5.50\(abom.8\)c0 | |
Zyxel EMG5723-T50K | ||
Zyxel Ep240p Firmware | <5.40\(abvh.0\)c0a03 | |
Zyxel EP240P | ||
Zyxel Ex5401-b0 | <5.17\(abyo.2\)c0 | |
Zyxel Ex5401-b0 Firmware | ||
Zyxel Ex5501-b0 | <5.17\(abry.3\)c0 | |
Zyxel Ex5501-b0 Firmware | ||
Zyxel Nebula LTE3301-Plus Firmware | <1.00\(abqu.6\)c0 | |
Zyxel LTE3301-Plus Firmware | ||
Zyxel LTE5388-M804 | <1.00\(abra.6\)c0 | |
Zyxel LTE5388-M804 | ||
Zyxel LTE5388-S905 | <1.00\(abvi.6\)c0 | |
Zyxel Lte5388-s905 Firmware | ||
Zyxel Lte5398-m904 | <1.00\(abqv.2\)c0 | |
Zyxel Lte5398-m904 Firmware | ||
Zyxel Lte7240-m403 | <2.00\(abmg.6\)c0 | |
Zyxel LTE7240-M403 Firmware | ||
Zyxel Nebula LTE7461-M602 Firmware | <2.00\(abqn.6\)c0 | |
Zyxel Nebula LTE7461-M602 Firmware | ||
Zyxel LTE7480-M804 | <1.00\(abra.6\)c0 | |
Zyxel Lte7480-m804 Firmware | ||
Zyxel LTE7480-S905 | <2.00\(abqt.6\)c0 | |
Zyxel LTE7480-S905 | ||
Zyxel LTE7485-S905 Firmware | <1.00\(abvn.6\)c0 | |
Zyxel LTE7485-S905 Firmware | ||
Zyxel LTE7490-M804 | <v1.00\(abqy.5\)c0 | |
Zyxel LTE7490-M804 | ||
Zyxel Nebula Nr5101 Firmware | <1.00\(abvc.6\)c0 | |
Zyxel Nebula Nr5101 | ||
Zyxel Nebula Nr7101 Firmware | <1.00\(abuv.7\)c0 | |
Zyxel Nebula Nr7101 Firmware | ||
Zyxel Nr7102 | <1.00\(abyd.2\)c0 | |
Zyxel Nr7102 Firmware | ||
Zyxel Pm7300-t0 Firmware | <5.42\(acbc.1\)c0 | |
Zyxel Pm7300-t0 Firmware | ||
Zyxel PMG5317-T20B | <5.40\(abki.4\)c0 | |
Zyxel PMG5317-T20B Firmware | ||
Zyxel PMG5617-T20B2 | <5.41\(acbb.1\)c0 | |
Zyxel PMG5617-T20B2 Firmware | ||
Zyxel PMG5617GA | <5.40\(abna.2\)c0 | |
Zyxel PMG5617GA Firmware | ||
Zyxel PMG5622GA | <5.40\(abnb.2\)c0 | |
Zyxel PMG5622GA Firmware | ||
VMG VMG3625-T50B firmware | <5.50\(abtl.0\)b2r | |
Zyxel VMG3625-T50B firmware | ||
Zyxel VMG3927-T50K | <5.50\(abom.8\)c0 | |
Zyxel VMG3927-T50K Firmware | ||
Zyxel VMG8623-T50B | <5.50\(abpm.7\)c0 | |
Zyxel VMG8623-T50B Firmware | ||
Zyxel VMG8825-T50K | <5.50\(abom.8\)c0 | |
Zyxel VMG8825-T50K firmware | ||
VMG VMG3625-T50B firmware | <5.50\(accr.0\)b4 | |
VMG VMG3625-T50B firmware | <5.50\(abpm.7\)c0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-35036 has a medium severity rating due to the potential exposure of sensitive information.
To fix CVE-2021-35036, update your Zyxel VMG3625-T50B firmware to the latest version provided by Zyxel.
CVE-2021-35036 primarily affects the Zyxel VMG3625-T50B firmware and other related Zyxel firmware versions.
CVE-2021-35036 could expose sensitive information stored in the configuration file of the affected device.
There is no official workaround for CVE-2021-35036, and the best course of action is to update the firmware.